BIND 10 #1164: TSIG ACL should avoid matching TSIG key without validation

BIND 10 Development do-not-reply at isc.org
Tue Aug 2 22:20:18 UTC 2011


#1164: TSIG ACL should avoid matching TSIG key without validation
-------------------------------------+-------------------------------------
            Reporter:  jinmei        |                        Owner:
                Type:  enhancement   |                       Status:  new
            Priority:  major         |                    Milestone:  Year
           Component:  Unclassified  |  3 Task Backlog
           Sensitive:  0             |                     Keywords:
         Sub-Project:  DNS           |              Defect Severity:  N/A
Estimated Difficulty:  0             |  Feature Depending on Ticket:
         Total Hours:  0             |          Add Hours to Ticket:  0
                                     |                    Internal?:  0
-------------------------------------+-------------------------------------
 This is an open issue carried over from #1104.

 See the discussion at around
 http://bind10.isc.org/ticket/1104#comment:10 (look for "possilbe open
 issue") and its follow ups.

 We should resolve this to make the operation safer.  It may require
 some modifications to libdns++ TSIG APIs.

-- 
Ticket URL: <http://bind10.isc.org/ticket/1164>
BIND 10 Development <http://bind10.isc.org>
BIND 10 Development


More information about the bind10-tickets mailing list